linkfox-junglescout-keyword-share-of-voice

Warn

Audited by Snyk on Apr 22, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.80). The skill explicitly calls the LinkFox Jungle Scout API at https://tool-gateway.linkfox.com/tool-jungle-scout/keywords/share-of-voice (see SKILL.md and references/api.md and scripts/junglescout_keyword_sov.py), which returns public Amazon search-result data (including seller-provided product titles/brands) that the agent ingests and uses to drive SOV analysis and actionable recommendations, exposing it to untrusted third‑party content that could contain injected instructions.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 22, 2026, 05:32 AM
Issues
1